Implement WLAN security and management
By —
Questions derived from the 642-845 - Optimizing Converged Cisco Networks Cisco Self-Test Software Practice Test.
Objective: Implement WLAN security and management
SubObjective: Describe and configure wireless security on Cisco clients and APs (e.g., SSID, WEP, LEAP, etc.)
Item Number: 642-845.5.1.44
Single Answer, Multiple Choice
What does Cisco recommend when implementing Cisco lightweight extensible authentication protocol (LEAP)?
- Server certificates
- Client certificate
- Strong passwords
- Password expiration
Answer:
C. Strong passwords
Tutorial:
Cisco LEAP should be deployed in conjunction with a strong password policy because it is highly vulnerable to brute force or dictionary attacks. Brute force and dictionary attacks are methods of attempting to guess passwords to gain access to a network. Strong passwords are passwords that are created to be difficult to guess.
LEAP is a password algorithm; therefore, server certificates do not apply.
Password expiration is not supported with Cisco LEAP. Therefore, this is an incorrect option.
Reference:
http://www.cisco.com/en/US/products/ps6307/products_qanda_item09186a00802030dc.shtml
http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_bulletin09186a00801cc901.html#wp1002201
http://www.cisco.com/en/US/products/hw/wireless/ps430/products_white_paper09186a00800b469f.shtml




